CVE-2018-11205

Description

A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.

Risk Information

Base Score
8.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
EPSS Score
Exploitation Probability
0.771

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-libs-debuginfo-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-libs-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-docs-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-devel-debuginfo-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-devel-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-debugsource-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-debuginfo-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-config-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) openmpi4-4.1.4-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm2-devel-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm2-debugsource-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm2-debuginfo-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm2-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm-devel-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm-debugsource-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm-debuginfo-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-psm-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-doc-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-devel-static-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-devel-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-debugsource-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-debuginfo-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mvapich2-2.3.7-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-ofi-devel-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-ofi-debugsource-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-ofi-debuginfo-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-ofi-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-devel-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-debugsource-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-debuginfo-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP5) mpich-4.0.2-150500.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-libs-debuginfo-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-libs-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-docs-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-devel-debuginfo-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-devel-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-debugsource-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-debuginfo-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-config-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) openmpi4-4.1.6-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-psm2-devel-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-psm2-debugsource-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-psm2-debuginfo-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-psm2-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-doc-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-devel-static-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-devel-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-debugsource-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-debuginfo-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mvapich2-2.3.7-150600.9.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-ofi-devel-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-ofi-debugsource-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-ofi-debuginfo-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-ofi-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-devel-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-debugsource-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-debuginfo-4.1.2-150600.3.2.1.x86_64.rpmLinux
SUSE-SU-2024:2195-1(Server Applications Module 15-SP6) mpich-4.1.2-150600.3.2.1.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234